6 ms·
I'm pretty sure this has been known for a long time. This was the method used to jailbreak some Windows Phones back in the day -- extract an archive that overwr
by jaxbot 8y ago
I'm pretty sure this has been known for a long time. This was the method used to jailbreak some Windows Phones back in the day -- extract an archive that overwrites carrier OMA files. Iirc you could just rename a folder in 7-zip to "../../foo" and it would work. No special tools required.
- masklinn 8y ago> I'm pretty sure this has been known for a long time. It has, but that so many libraries are still vulnerable by default means it hasn't exactly stuck.
- jwilk 8y agoThis class of vulnerabilites (directory traversal in an unarchiver) has been known at least since 2001: https://nvd.nist.gov/vuln/detail/CVE-2001-1268 https://nvd.nist.gov/vuln/detail/CVE-2001-1268 (Info-ZIP unzip) https://nvd.nist.gov/vuln/detail/CVE-2001-1270 https://nvd.nist.gov/vuln/detail/CVE-2001-1270 (PKZip) https://nvd.nist.gov/vuln/detail/CVE-2001-1271 https://nvd.nist.gov/vuln/detail/CVE-2001-1271 (rar)